SCIM ã¨ã¯
SCIMï¼System for Cross-domain Identity Management: ã¯ãã¹ãã¡ã¤ã³ã¢ã¤ãã³ãã£ãã£ç®¡çã·ã¹ãã ï¼ã¯ãã¦ã¼ã¶ã¼ãããã¸ã§ãã³ã°ã®èªååãå¯è½ã«ãããªã¼ãã³æ¨æºè¦æ ¼ã§ããå°æ¥ããã¯ããã¸ã¼ãã¯ã©ã¦ããã¼ã¹ã«ãªããã¨ãæç½ã«ãªã£ããã¨ãåãã¦2011 å¹´ã«çå®ããã¾ãããSCIM ã¯ãã¢ã¤ãã³ãã£ãã£ãããã¤ãã¼ï¼å¤æ°ã®ã¦ã¼ã¶ã¼ãæã¤ä¼æ¥ãªã©ï¼ã¨ã¦ã¼ã¶ã¼ã¢ã¤ãã³ãã£ãã£æ å ±ãè¦æ±ãããµã¼ãã¹ãããã¤ãã¼ï¼ã¨ã³ã¿ã¼ãã©ã¤ãº SaaS ã¢ããªã±ã¼ã·ã§ã³ãªã©ï¼ã¨ã®éã§ã¦ã¼ã¶ã¼ã¢ã¤ãã³ãã£ãã£ãã¼ã¿ãããåããã¾ã
å¤ãã®ä¼æ¥ã SCIM ã使ç¨ããçç±
端çã«è¨ãã°ãSCIM ã«ããã¦ã¼ã¶ã¼ãã¼ã¿ã®ã»ãã¥ãªãã£ãåä¸ããã¦ã¼ã¶ã¼ã¢ã¤ãã³ãã£ãã£ã©ã¤ããµã¤ã¯ã«ç®¡çããã»ã¹ãèªååããããã¨ã«ãã£ã¦ã¦ã¼ã¶ã¼ã¨ã¯ã¹ããªã¨ã³ã¹ãç°¡æåããã¾ãã
ä¼æ¥ãæé·ãéããé©æ°ãæã¡åºããå¾æ¥å¡ã®å ¥ãæ¿ãããéããã«ã¤ããã¦ã¼ã¶ã¼ã¢ã«ã¦ã³ãã®æ°ã¯æ¥æ¿ã«å¢å ãã¾ããå¾æ¥å¡ã¯ã顧客é¢ä¿ç®¡çãããã¼ã ã§ã®ã³ã©ãã¬ã¼ã·ã§ã³ã¾ã§ããããæ¥åã«ã¦ã¼ã¶ã¼ã¢ã«ã¦ã³ãã使ç¨ãã¾ããããã§ãã¦ã¼ã¶ã¼ã®è¿½å ãåé¤ãã¢ã¯ã»ã¹æ¨©ã®å¤æ´ãå¥ã®ç¨®é¡ã®ã¢ã«ã¦ã³ãã®è¿½å ã¨ãã£ããªã¯ã¨ã¹ãã¯ãã¹ã¦ãIT é¨éã®è²´éãªæéã奪ããã¨ã«ãªãã®ã§ãã
SCIM ã§ã¯ãOktaã®ãããªãã¼ã«ã使ã£ã¦ç´æ¥ã¦ã¼ã¶ã¼ã¢ã¤ãã³ãã£ãã£ãä½æãããã人äºã½ããã¦ã§ã¢ã Active Directory ãªã©ã®å¤é¨ã·ã¹ãã ããã¤ã³ãã¼ããããã§ãã¾ããSCIM ã¯æ¨æºè¦æ ¼ã§ãããããã¦ã¼ã¶ã¼ãã¼ã¿ã¯ä¸è²«ããæ¹æ³ã§ä¿åããããã¾ãã¾ãªã¢ããªã±ã¼ã·ã§ã³éã§ããåãã§ãã¾ããããã«ãããIT é¨éã§ã¯ããã»ã¹ã®ãããã¸ã§ãã³ã°ã¨ãããã¸ã§ãã³ã°è§£é¤ãèªååã§ããã¨åæã«ãåä¸ã®ã·ã¹ãã ã§ã¢ã¯ã»ã¹æ¨©ãã°ã«ã¼ãã®ç®¡çãã§ããããã«ãªãã¾ãããã¼ã¿ã¯èªå転éããããããã¨ã©ã¼ã®ãªã¹ã¯ãå°ãªããªãã¾ãã
IT é¨éã¯ãä¼æ¥ã®ãã£ã¬ã¯ããªããã¾ãã¾ãªå¤é¨ãã¼ã«ãã¢ããªã±ã¼ã·ã§ã³ã«æ¥ç¶ããã«ã¹ã¿ã çµ±åãéçºãã¦å®æçã«æ´æ°ããå¿ è¦ããªããªãã¾ããIT é¨é以å¤ã®å¾æ¥å¡ã¯ãã·ã³ã°ã«ãµã¤ã³ãªã³ï¼SSOï¼ãå©ç¨ãããã¨ã§åèªã®ã¯ã¼ã¯ããã¼ãç°¡ç´ åã§ããã¨ã¨ãã«ããã¹ã¯ã¼ãã®ãªã»ãã㧠IT é¨éã«ä½æ¥ãã¦ãããåæ°ãæ大㧠50% ãæ¸ãããã¨ãã§ããã®ã§ãã
åæã«ãSCIM ãæ¡ç¨ãããã¨ã§ãä¼æ¥ãç´é¢ããå¤ãã®ã»ãã¥ãªãã£ãªã¹ã¯ãä½æ¸ã§ãã¾ããå¾æ¥å¡ããµã¤ã³ãªã³ã«ããããå¥ã®ã¢ã«ã¦ã³ãã使ãå¿ è¦ããªããªãã¨ãä¼æ¥ã¯ã»ãã¥ãªãã£ããªã·ã¼ã³ã³ãã©ã¤ã¢ã³ã¹ã確å®ã«éµå®ã§ãã¾ããã¾ããè¤æ°ã®ãã¼ã«ãã¢ããªã±ã¼ã·ã§ã³ã§åããã¹ã¯ã¼ãã使ãåããã¨ã«ä¼´ããªã¹ã¯ãä½æ¸ããã¾ãããã¼ã ãæ°ããªã¯ã¼ã¯ããã¼ãéçºãããæ°ããã¢ããªã±ã¼ã·ã§ã³ãæ¡ç¨ããããã¦ããä¼æ¥ã¯ã¢ã«ã¦ã³ãã®è¿½è·¡ãã§ããªããªããªã¹ã¯ãè² ããã¨ãªããããããå¤æ´ã«å¯¾å¦ã§ããã®ã§ãã
SCIM ã®ä»çµã¿
SCIM 㯠REST ããã³ JSON ãã¼ã¹ã®ãããã³ã«ã§ãã¯ã©ã¤ã¢ã³ãã¨ãµã¼ãã¼ã®å½¹å²ãå®ç¾©ä»ãã¾ããã¯ã©ã¤ã¢ã³ãã¯é常ãOkta ã®ãããªã¢ã¤ãã³ãã£ãã£ãããã¤ãã¼ï¼IdPï¼ã§ãããã¦ã¼ã¶ã¼ã¢ã¤ãã³ãã£ãã£ã®è±å¯ãªæ å ±ãåãããã£ã¬ã¯ããªãå«ã¿ã¾ãããµã¼ãã¹ãããã¤ãã¼ï¼SPï¼ã¯é常ãBox ã Slack ãªã©ã® SaaS ã¢ããªã±ã¼ã·ã§ã³ã§ããããã®ã¢ã¤ãã³ãã£ãã£ããã®æ å ±ã®ãµãã»ãããå¿ è¦ã¨ãã¾ããIdP ã§ä½æãæ´æ°ãåé¤ã¨ãã£ãã¢ã¤ãã³ãã£ãã£ã¸ã®å¤æ´ãè¡ãããã¨ããããã®å¤æ´ã¯ SCIM ãããã³ã«ã«å¾ã£ã¦èªåçã« SP ã«åæããã¾ããã¾ããIdP 㯠SP ããã¢ã¤ãã³ãã£ãã£ãèªã¿åã£ã¦ãã£ã¬ã¯ããªã«è¿½å ããSP ã§ã»ãã¥ãªãã£ä¸ã®èå¼±æ§ã«ã¤ãªããä¸æ£ãªå¤ãæ¤åºãã¾ããããã«ãããã¨ã³ãã¦ã¼ã¶ã¼ã¯ãææ°ã®ãããã¡ã¤ã«ã¨ã¢ã¯ã»ã¹æ¨©ã使ã£ã¦ãèªèº«ãå²ãå½ã¦ãããã¢ããªã±ã¼ã·ã§ã³ã«ã·ã¼ã ã¬ã¹ã«ã¢ã¯ã»ã¹ã§ããã®ã§ãã
SCIM ããã¼ã¹ã«ãã Okta ããã¸ãã¹ã§ä½é¨
Okta ã«ã¯ãSCIM ãã¼ã¹ã®ãã®ãå«ãã80 以ä¸ã®ä¸»è¦ã¢ããªã¨ã®çµ±åã®ãããã¸ã§ãã³ã°ãçµ±åããã¦ãã¾ããã¾ããOkta ã¯ã5,000 以ä¸ã®ã¢ããªã§ã·ã³ã°ã«ãµã¤ã³ãªã³ããµãã¼ããã¦ãã¾ããããã«ãæ¥çããªã¼ãããä½åãã®ã¢ããªã API ã§çµ±åãããã¨ã§ãã¦ã¼ã¶ã¼ãã¼ã¿ãè¿ éãã¤å®å ¨ã«ããåããã¾ãããã²ãOkta ã®ã½ãªã¥ã¼ã·ã§ã³ã30 æ¥éç¡æã§ã試ãããã ããå®éã«ã¦ã¼ã¶ã¼ã¢ã¤ãã³ãã£ãã£ç®¡çãã©ãç°¡ç´ åãããããã確ãããã ããã
éçºããã¢ããªã Okta ã«çµ±åãããã¨ãèãã®éçºè ã®æ¹ã¯ãOkta ã® SCIM Provisioning Developer Program ã«ãåå ãã ããã